小养生 icon

xys.apk

小养生

28.89 MB

Analyzed: 2026-07-02 18:59 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
91/100
Threat scan clean
Privacy Permissions & network
41/100
High-risk permissions
57/100
Caution
Overall trust

Facts

Threat scan 0/74 flagged, 0 suspicious
Permissions 29 requested
Network strings 3 URLs (0 HTTP, 3 HTTPS)
Target SDK 30
Certificate Unknown

Warnings

Signing certificate metadata is unavailable.
High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.QUERY_ALL_PACKAGES
Requests 29 permissions (review carefully).
Package Name com.kairuide.xys
Version Code 122
Version Name 0.7.1
Application Name io.dcloud.application.DCloudApplication
Debuggable No
Allow Backup No
Min SDK Android 21 (Lollipop)
Target SDK Android 30 (Android 11)
Supported ABIs
arm64-v8a armeabi-v7a

Security Scan

0 /74
✓ Clean
Scanned by 74 security vendors
Last scan: 2026-07-02 18:59 UTC
Malicious
0
Suspicious
0
Harmless
0
Undetected
53
Timeout
13
Failure
2

Scan Providers

74 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.794
AVG timeout
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast timeout
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260702-02
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender timeout
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal timeout
No result reported
CMC timeout
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV timeout
No result reported
Engine 1.5.3.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.270
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet timeout
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.45121AVA:64.31515
Google undetected
No result reported
Engine 1783011638
Gridinsoft undetected
No result reported
Engine 1.0.249.174
Ikarus failure
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.60.60011
K7GW undetected
No result reported
Engine 14.60.60012
Kaspersky timeout
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.239
MaxSecure timeout
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26050.11
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda timeout
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor timeout
No result reported
Engine 2.22.3.0
SentinelOne undetected
No result reported
Engine 7.7.0.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.6.2.0
Symantec timeout
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-07-02.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.12.0
TrellixENS timeout
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1241
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38775
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya failure
No result reported
Engine 2.0.0.5634
ZoneAlarm undetected
No result reported
Engine 6.25-116107976
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 2694dc8:2694dc8:c6047a5:c6047a5
tehtris type-unsupported
No result reported
Engine v0.1.4

File Signatures

SHA-256 360298824b8e70fa37a1e6255bf41d634285fe34798484bc01d8da7267aba6d1
MD5 3ba7d0312d153680574925727626bda5
SHA-1 6a4b01b9f984715482d8823f504d755ee52d95b5
SSDEEP 786432:kN0bhQcH6EsfQVkRNtsVy1ybCSZw8Nf+eEgSuZYoGnGgfcO:kN0bCPRLRNtsM1yyTgxYoGGIcO
TLSH T104673347FB6AE277F1B38A39AB76561321524C5542C3E3572B56B13C0AB7DC0860EEC8
VHASH 09508352003dd53c405dee2281ea06b0
PERMHASH bba934514ea348f64d5ac4d8422b7997ab3e36b9faeb655c9bad84d9df1d9ce9

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v1.0 to extract, compression method=store File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (49%), Java Archive (24.5%), Sweet Home 3D Design (generic) (19%), ZIP compressed archive (7.2%) TrID file type guesses with probabilities.
dhash 0000001c1e161510 Perceptual hash used to compare visual similarity of files.
raw md5 b7c36653c3f2dc9393823ed6acb9a644 Raw MD5 hash of the file contents.
extensions xml (400), png (385), so (38), version (38), css (22), js (17), kotlin_builtins (8), svg (7), html (6), json (5), dex (4), gif (3), ttf (3), gz (2), arsc (1), AutoDiscoverable (1), bin (1), BuiltInsLoader (1), CoroutineExceptionHandler (1), ExternalOverridabilityCondition (1), MainDispatcherFactory (1), MessageBodyReader (1), MessageBodyWriter (1), MetadataExtensions (1), MF (1), ogg (1), prof (1), profm (1), properties (1), Providers (1), RSA (1), SF (1), textproto (1), txt (1) File extensions found inside the APK and how many of each.
file types XML (400), PNG (385), unknown (118), ELF (38), HTML (5), DEX (3), GIF (3), JavaScript (2), JSON (2), Java Bytecode (1), OGG (1) Detected embedded file types and their counts.
highest datetime 2026-06-12 17:38:40 UTC Latest timestamp found among files inside the archive.
lowest datetime 2026-06-12 17:38:36 UTC Earliest timestamp found among files inside the archive.
num children 958 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 65 MB Estimated total size of all files after extraction.

Native Libraries (19)

lib39285EFA lib39285EFA.so
Breakpad Crash Reporter Crash reporting library that captures diagnostic minidumps. libbreakpad-core.so
libdcblur libdcblur.so
libgifimage libgifimage.so
libijkffmpeg libijkffmpeg.so
libijkplayer libijkplayer.so
libijksdl libijksdl.so
libimagepipeline libimagepipeline.so
liblamemp3 liblamemp3.so
libnative-filters libnative-filters.so
libnative-imagetranscoder libnative-imagetranscoder.so
libpl_droidsonroids_gif libpl_droidsonroids_gif.so
libstatic-webp libstatic-webp.so
libuts-runtime libuts-runtime.so
libweexcore libweexcore.so
libweexjsb libweexjsb.so
libweexjss libweexjss.so
libweexjst libweexjst.so
libzxprotect libzxprotect.so

Requested Permissions (30)

modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
read phone status and identity Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. android.permission.READ_PHONE_STATE
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
android.permission.POST_NOTIFICATIONS Custom app or vendor permission (not publicly documented). android.permission.POST_NOTIFICATIONS
getui.permission.GetuiService.com.kairuide.xys Custom app or vendor permission (not publicly documented). getui.permission.GetuiService.com.kairuide.xys
android.permission.READ_MEDIA_IMAGES Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_IMAGES
android.permission.READ_MEDIA_VIDEO Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VIDEO
android.permission.READ_MEDIA_VISUAL_USER_SELECTED Custom app or vendor permission (not publicly documented). android.permission.READ_MEDIA_VISUAL_USER_SELECTED
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
App badge update Allows the app to update the launcher icon badge count on Huawei launchers. com.huawei.android.launcher.permission.CHANGE_BADGE
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.vivo.notification.permission.BADGE_ICON
com.asus.msa.SupplementaryDID.ACCESS
take pictures and videos This app can take pictures and record videos using the camera while the app is in use. android.permission.CAMERA
Dynamic receiver access Internal app permission used to protect dynamic broadcast receivers. com.kairuide.xys.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
android.permission.QUERY_ALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.QUERY_ALL_PACKAGES
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
retrieve running apps Allows the app to retrieve information about currently and recently running tasks. This may allow the app to discover information about which applications are used on the device. android.permission.GET_TASKS
android.permission.SCHEDULE_EXACT_ALARM Custom app or vendor permission (not publicly documented). android.permission.SCHEDULE_EXACT_ALARM
access precise location only in the foreground This app can get your precise location from location services while the app is in use. Location services for your device must be turned on for the app to get location. This may increase battery usage. android.permission.ACCESS_FINE_LOCATION
access approximate location only in the foreground This app can get your approximate location from location services while the app is in use. Location services for your device must be turned on for the app to get location. android.permission.ACCESS_COARSE_LOCATION
android.permission.ACCESS_BACKGROUND_LOCATION Custom app or vendor permission (not publicly documented). android.permission.ACCESS_BACKGROUND_LOCATION
Install Packages android.permission.INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
Flashlight android.permission.FLASHLIGHT
record audio android.permission.RECORD_AUDIO
change your audio settings Allows the app to modify global audio settings such as volume and which speaker is used for output. android.permission.MODIFY_AUDIO_SETTINGS

Uses Features (2)

Camera Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera
Camera Autofocus Feature for {@link #getSystemAvailableFeatures} and android.hardware.camera.autofocus

Activities (20)

io.dcloud.PandoraEntry
io.dcloud.PandoraEntryActivity
com.igexin.sdk.PushActivity
io.dcloud.feature.nativeObj.photoview.PhotoActivity
io.dcloud.WebAppActivity
io.dcloud.ProcessMediator
io.dcloud.WebviewActivity
com.dmcbig.mediapicker.PickerActivity
com.dmcbig.mediapicker.PreviewActivity
io.dcloud.feature.gallery.imageedit.IMGEditActivity
io.dcloud.sdk.activity.WebViewActivity
uts.sdk.modules.DCloudUniMedia.SystemPickerActivity
com.alipay.sdk.app.H5PayActivity
com.alipay.sdk.app.H5AuthActivity
com.alipay.sdk.app.PayResultActivity
com.alipay.sdk.app.AlipayResultActivity
com.alipay.sdk.app.H5OpenAuthActivity
com.alipay.sdk.app.APayEntranceActivity
com.igexin.sdk.GetuiActivity
com.igexin.sdk.PopupActivity

Services (7)

io.dcloud.feature.unipush.GTNormalIntentService
io.dcloud.feature.unipush.CustomGTService
io.dcloud.sdk.base.service.DownloadService
com.getui.gtc.GtcService
com.igexin.sdk.PushService
com.igexin.sdk.GTIntentService
com.igexin.sdk.GService

Broadcast Receivers (2)

com.taobao.weex.WXGlobalEventReceiver com.taobao.weex.WXGlobalEventReceiver
Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver

Content Providers (4)

io.dcloud.common.util.DCloud_FileProvider
io.dcloud.sdk.base.service.provider.DCloudAdFileProvider
androidx.startup.InitializationProvider
com.getui.gtc.base.GtcProvider

Submission Details

Submitted At 2026-07-02
First Submission 2026-07-02
Last Submission 2026-07-02
Stored Until 2026-08-01